CVE Database
/

CVE-2022-25210

Back to search

CVE-2022-25210

Published: Feb 15, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

Jenkins Convertigo Mobile Platform Plugin 1.1 and earlier uses static fields to store job configuration information, allowing attackers with Item/Configure permission to capture passwords of the jobs that will be configured.

VendorProductVersions

Jenkins project

Jenkins Convertigo Mobile Platform Plugin

affected
unspecified - <= 1.1
unknown
next of 1.1 - < unspecified

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now